2025 CVE Vulnerabilities
45,334 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9483 | HIGH | 8.8 | 0.9% | Aug 26, 2025 | A flaw has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1... |
| CVE-2025-9482 | HIGH | 8.8 | 7.5% | Aug 26, 2025 | A vulnerability was detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.... |
| CVE-2025-9481 | HIGH | 8.8 | 1.3% | Aug 26, 2025 | A security vulnerability has been detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.... |
| CVE-2025-8424 | HIGH | 8.7 | 2.7% | Aug 26, 2025 | Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker ca... |
| CVE-2025-50753 | HIGH | 8.4 | 0.1% | Aug 26, 2025 | Mitrastar GPT-2741GNAC-N2 devices are provided with access through ssh into a restricted default shell.The command "devi... |
| CVE-2025-29992 | HIGH | 7.5 | 0.3% | Aug 26, 2025 | Mahara before 24.04.9 exposes database connection information if the database becomes unreachable, e.g., due to the data... |
| CVE-2025-38676 | HIGH | 7.8 | 0.4% | Aug 26, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Avoid stack buffer overflow from kernel ... |
| CVE-2025-53419 | HIGH | 7.8 | 0.2% | Aug 26, 2025 | Delta Electronics COMMGR has Code Injection vulnerability. |
| CVE-2025-53418 | HIGH | 8.6 | 0.4% | Aug 26, 2025 | Delta Electronics COMMGR has Stack-based Buffer Overflow vulnerability. |
| CVE-2025-5931 | HIGH | 8.8 | 0.4% | Aug 26, 2025 | The Dokan Pro plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and... |
| CVE-2025-9172 | HIGH | 7.5 | 0.4% | Aug 26, 2025 | The Vibes plugin for WordPress is vulnerable to time-based SQL Injection via the ‘resource’ parameter in all versions up... |
| CVE-2025-9461 | HIGH | 7.5 | 0.3% | Aug 26, 2025 | A weakness has been identified in diyhi bbs up to 6.8. The impacted element is an unknown function of the file src/main/... |
| CVE-2025-9443 | HIGH | 8.8 | 0.7% | Aug 26, 2025 | A flaw has been found in Tenda CH22 1.0.0.1. This vulnerability affects the function formeditUserName of the file /gofor... |
| CVE-2025-8627 | HIGH | 8.8 | 0.3% | Aug 25, 2025 | The TP-Link KP303 Smartplug can be issued unauthenticated protocol commands that may cause unintended power-off conditio... |
| CVE-2025-57809 | HIGH | 7.5 | 0.4% | Aug 25, 2025 | XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.21,... |
| CVE-2025-57805 | HIGH | 8.7 | 0.3% | Aug 25, 2025 | The Scratch Channel is a news website. In versions 1 and 1.1, a POST request to the endpoint used to publish articles, c... |
| CVE-2025-6188 | HIGH | 7.5 | 0.4% | Aug 25, 2025 | On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS. U... |
| CVE-2025-9417 | HIGH | 8.8 | 0.4% | Aug 25, 2025 | A weakness has been identified in itsourcecode Apartment Management System 1.0. This issue affects some unknown processi... |
| CVE-2025-57811 | HIGH | 7.2 | 0.8% | Aug 25, 2025 | Craft is a platform for creating digital experiences. From versions 4.0.0-RC1 to 4.16.5 and 5.0.0-RC1 to 5.8.6, there is... |
| CVE-2025-57802 | HIGH | 8.7 | 0.4% | Aug 25, 2025 | Airlink's Daemon interfaces with Docker and the Panel to provide secure access for controlling instances via the Panel. ... |
| CVE-2025-50383 | HIGH | 8.1 | 0.4% | Aug 25, 2025 | alextselegidis Easy!Appointments v1.5.1 was discovered to contain a SQL injection vulnerability via the order_by paramet... |
| CVE-2025-6737 | HIGH | 7.2 | 0.2% | Aug 25, 2025 | Securden’s Unified PAM Remote Vendor Gateway access portal shares infrastructure and access tokens across multiple tenan... |
| CVE-2025-57760 | HIGH | 8.8 | 0.4% | Aug 25, 2025 | Langflow is a tool for building and deploying AI-powered agents and workflows. A privilege escalation vulnerability exis... |
| CVE-2025-29421 | HIGH | 7.5 | 0.3% | Aug 25, 2025 | PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the getThemeFileContent function. |
| CVE-2025-29420 | HIGH | 7.5 | 0.8% | Aug 25, 2025 | PerfreeBlog v4.0.11 has a directory traversal vulnerability in the getThemeFilesByName function. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now